CVE-2015-2008: IBM Qradar Security Information And Event Manager

Medium severity, CVSS 4.4. EPSS: 0.8% chance of exploitation in the next 30 days.

IBM Security QRadar SIEM 7.1.x before 7.1 MR2 Patch 12 and 7.2.x before 7.2.6 includes SSH private keys during backup operations, which allows remote authenticated administrators to obtain sensitive information by reading a backup archive.

Affected products

  • IBM Qradar Security Information And Event Manager: version 7.1.0 only; version 7.2.0 only; version 7.2.1 only; version 7.2.2 only; version 7.2.3 only; version 7.2.4 only; …

Published 2016-02-15. Last modified 2026-06-17.